Volume 22, Number 3, 330-364, DOI: 10.1007/s00145-008-9022-1

Using Abelian Varieties to Improve Pairing-Based Cryptography

K. Rubin and A. Silverberg

View Related Documents

Abstract

We show that supersingular Abelian varieties can be used to obtain higher MOV security per bit, in all characteristics, than supersingular elliptic curves. We give a point compression/decompression algorithm for primitive subgroups associated with elliptic curves that gives shorter signatures, ciphertexts, or keys for the same security while using the arithmetic on supersingular elliptic curves. We determine precisely which embedding degrees are possible for simple supersingular Abelian varieties over finite fields and define some invariants that are better measures of cryptographic security than the embedding degree. We construct examples of good supersingular Abelian varieties to use in pairing-based cryptography.

Keywords  Elliptic curves - Pairing-based cryptography - Elliptic curve cryptography - Abelian varieties - Compression

Communicated by Johannes Buchmann
Preliminary versions of parts of this paper appeared in the proceedings of Crypto 2002 38, ANTS VI 40 and the Daewoo Workshop on Cryptography 46.

Fulltext Preview

Image of the first page of the fulltext document